cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

Who rated this post

@amaynard,

The Device Restart flags the user's attention to scenarios in which the SCM AIOps detects that a box has come back after a non-user-triggered reboot. Once triggered, this monitors the box's stability and auto-clears after 3 days if no new restarts are observed. We anticipate that this gives the user a chance to investigate why a restart occurred.
A delayed telemetry scenario means that the SCM AIOps end is unaware of what is happening on the box - that defeats the purpose of monitoring the box in the first place. 

Both of these are serious stability issues that require attention, perhaps not for the SOC team, but for the NetSec admins who manage the availability & performance.

The incident framework allows for granular notification capabilities. Depending on your org, these kinds of incidents may not need to go to the SOC team if the SOC team is not interested.


 

Who rated this post